Security News > 2022 > July

Reskilling heroes: Understanding the new opportunities for vets in America’s fast-growing cyber sector
2022-07-12 14:00

To ease this transition, reskilling programs designed for veterans are becoming increasingly popular, especially in the cybersecurity and IT fields where new talent is needed. To start, vets need to update and/or draft a new resume that reflects their current skill set, and while this may seem simple, it can be difficult for veterans who find themselves with large professional gaps or are unsure how to translate their military expertise into basic work skills.

Security Vulnerabilities in Honda’s Keyless Entry System
2022-07-12 12:23

On Thursday, a security researcher who goes by Kevin2600 published a technical report and videos on a vulnerability that he claims allows anyone armed with a simple hardware device to steal the code to unlock Honda vehicles.Kevin2600, who works for cybersecurity firm Star-V Lab, dubbed the attack RollingPWN. []. In a phone call, Kevin2600 explained that the attack relies on a weakness that allows someone using a software defined radio-such as HackRF-to capture the code that the car owner uses to open the car, and then replay it so that the hacker can open the car as well.

How War Impacts Cyber Insurance
2022-07-12 12:20

We're now seeing a shift back to traditional risk measurement, with underwriters approaching cyber insurance in a manner similar to physical insurance - by assessing where the biggest risks are and determining whether they should exclude certain risks from coverage, as well as establishing a bar to define what constitutes reasonable care. By the end of 2020, more than half of cyber insurance policy holders saw the price of their coverage rise by as much as 30 percent, according to GAO. While the current conflict in Ukraine will likely lead to a rise in cyber insurance purchases, the harsh reality is that most coverage will not protect enterprises from nation-state attacks or even ransomware.

Microsoft 365 patches for Windows 7 to end in 2023
2022-07-12 12:15

Microsoft has warned users clinging to Windows 7 and Windows 8.1 that the end really is nigh. Windows 7 went out of support in 2020, but Microsoft recognized that many enterprises were quite happy where they were.

Cybersecurity, data protection and inadequate IT budgets are top of mind for IT professionals
2022-07-12 12:00

Cybersecurity, data protection and inadequate IT budgets are top of mind for IT professionals We may be compensated by vendors who appear on this page through methods such as affiliate links or sponsored partnerships. The main three challenges are cybersecurity and data protection, insufficient IT budgets and resources to meet demands, and legacy systems that hamper growth and innovation, according to the annual report.

‘Callback’ Phishing Campaign Impersonates Security Firms
2022-07-12 11:43

A new callback phishing campaign is impersonating prominent security companies to try to trick potential victims into making a phone call that will instruct them to download malware. Researchers at CrowdStrike Intelligence discovered the campaign because CrowdStrike is actually one of the companies, among other security firms, being impersonated, they said in a recent blog post.

Researchers defeat facial recognition systems with universal face mask
2022-07-12 08:04

Can attackers create a face mask that would defeat modern facial recognition systems? A group of researchers from from Ben-Gurion University of the Negev and Tel Aviv University have proven that it can be done. "We validated our adversarial mask's effectiveness in real-world experiments by printing the adversarial pattern on a fabric face mask. In these experiments, the FR system was only able to identify 3.34% of the participants wearing the mask," they noted.

Employees frustrated by the lack of suitable tech in a hybrid work environment
2022-07-12 08:00

Ivanti worked with global digital transformation experts and surveyed 10,000 office workers, IT professionals, and the C-Suite to evaluate the level of prioritization and adoption of DEX in organizations and how it shapes the daily working experiences for employees. This Help Net Security video covers the highlights of these findings.

UK Info Commissioner slams use of WhatsApp by health officials during pandemic
2022-07-12 06:55

The UK Information Commissioner's Office on Monday issued a reprimand and called for a review of how and whether messaging services should be used for government business practices, after finding widespread and potentially dangerous use of private email, WhatsApp and other messaging tools by officials at the Department of Health and Social Care. The actions ordered by ICO came after a year-long investigation as to whether the DHSC was compliant with the UK General Data Protection Regulations, the UK Data Protection Act 2018 and the Freedom of Information Act 2000 during the COVID-19 pandemic.

Take the day off: Windows Autopatch is live and can even fix cloudy PCs
2022-07-12 06:03

Microsoft's promised service to enable automatic patching of Windows has gone live. The software giant on Monday announced Windows Autopatch is up and running.